Usable with caveats: it has a clear README, tests, an MIT license, and a small dependency footprint, but this is a brand-new release with no demonstrated maintenance history. The repository has no security scanning or security policy, so long-term support and review remain uncertain.
58%
Total Score
50
100
83
83
This is the package's first release, published 0 days ago, so there is no track record of maintenance, bug fixes, or release stability yet.
There were no commits and no active maintainers in the preceding three months. Because the project is newly released, this mainly means maintenance capacity is unproven rather than established abandonment.
The repository has zero stars, forks, and watchers. That is understandable for a release published today, but it provides no independent evidence of community use or review.
Composer build tooling is present, but no security scanning tools were detected. For a framework intended to process web requests, the absence of automated security checks is a meaningful hygiene gap.
The repository has no security policy, leaving vulnerability-reporting and response expectations undocumented. This is a transparency gap, though not by itself evidence that the code is unsafe.
We didn't find any vulnerabilities for this package.
No maintainer information available.
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^3.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.